From owner-freebsd-security@FreeBSD.ORG Fri Dec 9 08:21:16 2011 Return-Path: Delivered-To: freebsd-security@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 15E5B106564A for ; Fri, 9 Dec 2011 08:21:15 +0000 (UTC) (envelope-from gabor@zahemszky.hu) Received: from default-smtp.integrity.hu (default-smtp.integrity.hu [212.52.165.203]) by mx1.freebsd.org (Postfix) with ESMTP id 8B1A38FC16 for ; Fri, 9 Dec 2011 08:21:15 +0000 (UTC) Received: by smtp.integrity.hu (Postfix, from userid 10000) id C23131346789; Fri, 9 Dec 2011 09:04:39 +0100 (CET) Received: from webmail2.integrity.hu (mail-fe-1.integrity.hu [10.1.64.120]) (Authenticated sender: gabor@zahemszky.hu) by smtp.integrity.hu (Postfix) with ESMTPA id 3535613466D3 for ; Fri, 9 Dec 2011 09:04:39 +0100 (CET) Received: from E8/OtuSu8HvGcSPnBJWevBiiZVXIvHhgTrDRJwhFb1b5Ti0rgdB75w== (8/UD+F0B8/LnBQhsUWAP5oRa1j4PMdfV) by webmail2.integrity.hu with HTTP (HTTP/1.1 POST); Fri, 09 Dec 2011 09:04:39 +0100 MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8; format=flowed Content-Transfer-Encoding: 8bit Date: Fri, 09 Dec 2011 09:04:39 +0100 From: gabor@zahemszky.hu To: In-Reply-To: <4EE131B8.7040000@sentex.net> References: <4ED68B4D.4020004@sentex.net> "<4ED69B7E.50505@frasunek.com>" <4ED6C3C6.5030402@delphij.net> "<4ED6D1CD.9080700@sentex.net>" <4ED6D577.9010007@delphij.net> <4ED6DA75.30604@sentex.net> <4EE131B8.7040000@sentex.net> Message-ID: X-Sender: gabor@zahemszky.hu User-Agent: Roundcube Webmail/0.5.1 X-Virus-Scanned: clamav-milter 0.97 at mail-autosubmit X-Virus-Status: Clean Subject: Re: ftpd security issue ? X-BeenThere: freebsd-security@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Security issues \[members-only posting\]" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 09 Dec 2011 08:21:16 -0000 Hi! Are the following steps enough to prevent me? # for user in user1 user2 .... ; do mkdir -p ~$user/lib ~$user/usr/lib ~$user/etc chflags sunlink,schg ~$user/lib ~$user/usr ~$user/usr/lib ~$user/etc done # Bye, Gábor < Gabor at Zahemszky dot HU >